• Use IP host list as DNS server options?

    alan weir
    alan weir
    Instead of manually entering DNS IP addresses into the DNS fields, it would be nice if we could use an IP host instead. Say you wanted to use google as your DNS. A user could create an IP host called "Google DNS servers" of the two IP addresses 8.8.8…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG Bridge Mode in Multi Vlan Enviroment

    Samir Saraveli
    Samir Saraveli
    Need help Sophos XG Bridge Mode in Multi Vlan Enviroment I am attempting to setup XG in bridge mode on a multi VLAN line between switch infrastructure and the main routing equipment (The trunk from the switches to the router). Based on the documentation…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • DNS server allows cache snooping (dns-allows-cache-snooping)

    Anesu Dangarembwa
    Anesu Dangarembwa
    Good day l have a client with a sophos xg 310, they did a security audit report on their network. and the report came with this queries for DNS server allows cache snooping. l want to Restrict the processing of DNS queries to only systems that should…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • WAN Link Aggregation on XG?

    Daniel Gilbert
    Daniel Gilbert
    I have 2 WAN links from the same provider with the same gateway. Would it be possible to aggregate the connections (bonding) for double the speed?
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • DNS timeouts when using XGS107 as dns server

    Alexander Ruch
    Alexander Ruch
    Hello, When I use Sophos as the DNS server, I sometimes get a timeout for the DNS resolution. I also tried it directly from the XGS CLI. CLI: XGS107_SN01_SFOS 19.5.4 MR-4-Build718# nslookup google.de. 1.1.1.1 Domain Name Server# 1.1.1.1 Domain Name…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Vodafone Bridge Mode erfordert DHCP Option 60 auf WAN

    K-M
    K-M
    Hallo, mehr zum Thema siehe hier: https://forum.vodafone.de/t5/Ger%C3%A4te/Bridge-Mode-funktioniert-pl%C3%B6tzlich-nicht-mehr-Technik-Support/m-p/3058330 Problem ist, dass ich scheinbar keine DHCP Antwort bekomme, wenn nicht in DHCP Option 60 was eingetragen…
    • 10 months ago
    • Sophos Firewall
    • German Forum
  • Advanced DHCP Configuration with MAC Address Filtering and Custom Options in Sophos

    Nick Dann
    Nick Dann
    Hello Sophos Community, I am currently working on a sophisticated DHCP setup on my Sophos system and need some advice on how to achieve specific configurations. Any guidance or insights from the community would be greatly appreciated. My goal is to…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Sample of syslog messages for Sophos Firewall

    Evgenii Panarin
    Evgenii Panarin
    Good afternoon, Can you tell me where I can find example messages for syslog? Since in the documentation below the table with examples is empty. Or is it necessary to use the legacy option in this case? Any suggestions on where they can be found are welcome…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Issue with static DHCP in 1 interface and dynamic DHCP in other interfaces

    eclipse79
    eclipse79
    Hello In Port 1 I set static DHCP for 1 client. If this client tries to connect to port 5 using DHCP (in this case I did not set any static DHCP) the client will not receive any IP. If I remove the static DHCP entry for port 1, client will receive…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • DNS over TLS (DoT) causes "Invalid Traffic" but only on IPv6

    w0rmh0le
    w0rmh0le
    Hi, I want some local DNS servers to do DNS over TLS (DoT) and have configured them accordingly. I created a rule allowing TCP 853 for those hosts - both IPv4 and IPv6. Because of IPv6 is assigned via PD I used the client MAC address (on local LAN…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Nmap shows open Ports on WAN

    Hans_Dampf
    Hans_Dampf
    hi, if I scan the WAN IP from my Sophos Firewall, i can see open Ports, like: PORT STATE SERVICE 21/tcp open ftp 22/tcp filtered ssh 23/tcp filtered telnet 25/tcp filtered smtp 53/tcp filtered domain 80/tcp open http 110/tcp filtered pop3 111/tcp…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Workstations on LAN fail to resolve play.google.com

    Pablo Porta
    Pablo Porta
    Hello All, Using Sophos XG310 Firmware 18.5.4 MR-4 Build 418 I have an unusual issue, essentially all workstations on the LAN of the Sophos Firewall are unable to access play.google.com Originally it appeared to be due to perhaps Web Filtering or…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • XGS firewall DHCP - DNS

    Elie Ibrahim
    Elie Ibrahim
    hello configuring DHCP lease on XGS 107 firewall in "DNS server" section there is only 2 fields, is there a way to have the DHCP provide 3 DNS to clients Thanks Elie
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • DHCP through XG or UDM?

    Jakub Pusz
    Jakub Pusz
    Hello everyone, I'm testing the following configuration: ISP modem home network - > Sophos XG in router mode - > UDM-SE I've a number a VLANs configured on UDM and Sophos and everything communicates fine. My current configuration has all…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG: Internet von fritzbox in VLan über Proxyeinstellungen im Browser nutzen?

    SenorChang
    SenorChang
    Hallo, Ich habe ein kleines Problem bzw. brauche eine Idee: Wir nutzen eine SophosXG mit einem Router davor von ProviderA und haben in einem Vlan500 eine Fritzbox von ProviderB stehen (für diverse Tests ) User in Vlan1 --> 192.160.1.0/24 greifen normal…
    • 10 months ago
    • Sophos Firewall
    • German Forum
  • Bridge interface is not working with vlan

    Joy Joy1
    Joy Joy1
    Dear Team, We have to add two interface as a bridge - like A1 and A2 with sub interfaces (Vlan interface). Below are the configuration steps which I had created yesterday for bridge interfaces- 1. Created Zone (Common ZONE) 2. having created…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall: How to Configure Inter-VLAN Routing on Sophos Firewall

    Raphael Alganes
    Raphael Alganes
    Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. ______________________________________________________________________________________________________________________________________…
    • 10 months ago
    • Sophos Firewall
    • Recommended Reads
  • Sophos XGS: Client und Telefonanlage im lokalen LAN, Client kann sich nur zeitweise anmelden.

    Flo K
    Flo K
    Laut tcpdump kommt der Client an die Telefonanlage, meldet sich aber nicht an (Im Log der Anlage erscheint er nicht): 16:53:42.036965 IP 10.81.234.131.56089 > 192.168.200.5.xmpp-client: Flags [S], seq 1895341923, win 65535, options [mss 1357,nop,wscale…
    • 10 months ago
    • Sophos Firewall
    • German Forum
  • Interface goes unresponsive when a new interface is added

    Rajeev Scaria
    Rajeev Scaria
    I am using sophos xg430 firewall. I have noticed a strange behaviour that when a new interface is added, the adjacent interfaces becomes unresponsive. Either we have to wait for almost 10 hours to have the interface to respond/we need to reboot the firewall…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • XG appliance has no internet but LAN devices do

    Jakub Pusz
    Jakub Pusz
    Hello, I've Sophos XG installed in between ISP modem and router. The XG in bridge mode with LAN and WAN bridged together. The router and LAN all have internet access. However, Sophos XG doesn't - what I mean by that I can't update firmware for instance…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Way to change dhcp adresses within command line?

    FNG_117
    FNG_117
    Hi all, Wondering if there is a way to set dhcp via cli? Or what the best way to change the main interface IP without losing connection? My issue is everytime I change the IP of the Port1, I expectedly lose connection. Trouble is that I cannot…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • XG Firewall is impersonating the whole subnet for port 25

    John Felix Rodrin
    John Felix Rodrin
    Good day, Currently we are doing network discovery, and we found that the whole subnet are answering to the ping discovery which is weird. Upon checking, the ip addresses that are not assigned are replying via port tcp 25. When we telnet it the "220…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Firewall DHCP Relay stops working until you delete an recreate a random DHCP Relay object

    LHerzog
    LHerzog
    This issue is annoying us for years and happened today again after one year of being working. XG 430 with lag and SFOS 19.5.3 XG has several VLAN. On one VLAN a Windows DHCP Server is serving DHCP addresses. On several other VLAN configured also…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Network Support Please Xg 135

    Erhan Pesen
    Erhan Pesen
    Hello everyone, I need assistance in configuring the internet connection with a real IP entering through WAN on port 1 and going out as a real IP on port 2, while distributing it as a local IP. Please help me with this.
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Static IP for Sophos Firewall

    Oktawian Komornicki
    Oktawian Komornicki
    Hello dear community! I would like to clarify few dummy things. During configuring my terminal station into firewall router (steps as per 'tutorial': https://www.youtube.com/watch?v=YGR9_kmPlig&t=451s ) I've encountered issue as was unable to connect…
    • 11 months ago
    • Sophos Firewall
    • Discussions
<>